Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-08-2017 Ran by Sonia & Jasper (20-08-2017 22:17:33) Running from C:\Users\Sonia & Jasper\Downloads Windows 7 Home Premium Service Pack 1 (X64) (2013-03-06 15:05:50) Boot Mode: Safe Mode (with Networking) ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-1535155601-2421706697-1459365258-500 - Administrator - Disabled) Guest (S-1-5-21-1535155601-2421706697-1459365258-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1535155601-2421706697-1459365258-1003 - Limited - Enabled) Sonia & Jasper (S-1-5-21-1535155601-2421706697-1459365258-1001 - Administrator - Enabled) => C:\Users\Sonia & Jasper UpdatusUser (S-1-5-21-1535155601-2421706697-1459365258-1000 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: McAfee Anti-Virus and Anti-Spyware (Enabled - Up to date) {ADA629C7-7F48-5689-624A-3B76997E0892} AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF} AS: McAfee Anti-Virus and Anti-Spyware (Enabled - Up to date) {16C7C823-5972-5907-58FA-0004E2F9422F} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402} FW: McAfee Firewall (Enabled) {959DA8E2-3527-57D1-4915-924367AD4FE9} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) µTorrent (HKU\S-1-5-21-1535155601-2421706697-1459365258-1001\...\uTorrent) (Version: 3.5.0.43804 - BitTorrent Inc.) Adobe Flash Player 26 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 26.0.0.151 - Adobe Systems Incorporated) Adobe Flash Player 26 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 26.0.0.151 - Adobe Systems Incorporated) Adobe Reader XI (11.0.20) - Nederlands (HKLM-x32\...\{AC76BA86-7AD7-1043-7B44-AB0000000001}) (Version: 11.0.20 - Adobe Systems Incorporated) Audacity 2.1.2 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.2 - Audacity Team) Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 17.5.2303 - AVAST Software) Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation) dr.fone toolkit for Android (Version 8.0.1) (HKLM-x32\...\{7B08A1E1-3644-4237-B39D-762B5F5564D0}_is1) (Version: 8.0.1.32 - Wondershare Software Co.,Ltd.) Dropbox (HKLM-x32\...\Dropbox) (Version: 32.4.23 - Dropbox, Inc.) Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.65.1 - Dropbox, Inc.) Hidden Galerie de photos Windows Live (HKLM-x32\...\{488F0347-C4A7-4374-91A7-30818BEDA710}) (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 60.0.3112.90 - Google Inc.) Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.5 - Google Inc.) Hidden Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden HEMA Fotoservice (HKLM-x32\...\HEMA Fotoservice_is1) (Version: - ) Microsoft .NET Framework 4.7 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.02053 - Microsoft Corporation) Microsoft Office 365 - nl-nl (HKLM\...\O365HomePremRetail - nl-nl) (Version: 15.0.4953.1001 - Microsoft Corporation) Microsoft Office XP Professional (HKLM-x32\...\{90110413-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation) Microsoft OneDrive (HKU\S-1-5-21-1535155601-2421706697-1459365258-1001\...\OneDriveSetup.exe) (Version: 17.3.6943.0625 - Microsoft Corporation) Microsoft PowerPoint Viewer (HKLM-x32\...\{95140000-00AF-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50907.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation) Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Firefox 54.0.1 (x86 nl) (HKLM-x32\...\Mozilla Firefox 54.0.1 (x86 nl)) (Version: 54.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 54.0.1.6388 - Mozilla) Office 15 Click-to-Run Extensibility Component (HKLM-x32\...\{90150000-008C-0000-0000-0000000FF1CE}) (Version: 15.0.4953.1001 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (HKLM\...\{90150000-008F-0000-1000-0000000FF1CE}) (Version: 15.0.4953.1001 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (HKLM-x32\...\{90150000-008C-0413-0000-0000000FF1CE}) (Version: 15.0.4953.1001 - Microsoft Corporation) Hidden Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 7.48.823.2011 - Realtek) Samsung Kies (HKLM-x32\...\{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.4.16113.3 - Samsung Electronics Co., Ltd.) Hidden Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.4.16113.3 - Samsung Electronics Co., Ltd.) Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.61.0 - Samsung Electronics Co., Ltd.) Skype Click to Call (HKLM-x32\...\{873F8E7C-10E6-449F-BD7E-5FBA7C8E1C9B}) (Version: 8.5.0.9167 - Microsoft Corporation) Skype™ 7.39 (HKLM-x32\...\{3B7E914A-93D5-4A29-92BB-AF8C3F66C431}) (Version: 7.39.102 - Skype Technologies S.A.) SoulseekQt (HKLM-x32\...\SoulseekQt) (Version: - ) Spotify (HKU\S-1-5-21-1535155601-2421706697-1459365258-1001\...\Spotify) (Version: 1.0.31.56.g526cfefe - Spotify AB) Unity Web Player (HKU\S-1-5-21-1535155601-2421706697-1459365258-1001\...\UnityWebPlayer) (Version: - Unity Technologies ApS) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN) VST Bridge 1.1 (HKLM-x32\...\VST Bridge_is1) (Version: - ) Windows Driver Package - Lenovo (ACPIVPC) System (12/15/2011 7.1.0.1) (HKLM\...\99841829BE839365AA67B2AD0E50D371F59F8A1E) (Version: 12/15/2011 7.1.0.1 - Lenovo) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation) Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (HKLM-x32\...\{C32CE55C-12BA-4951-8797-0967FDEF556F}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Phone app for desktop (HKLM-x32\...\{5F71448B-88EB-4357-9A98-8658D4C49C48}) (Version: 1.1.2726.0 - Microsoft Corporation) Wondershare Filmora(Build 7.1.0) (HKLM\...\Wondershare Filmora_is1) (Version: - Wondershare Software) Wondershare Photo Recovery (build 3.1.1) (HKLM-x32\...\Wondershare Photo Recovery_is1) (Version: - Wondershare Co., Ltd.) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-1535155601-2421706697-1459365258-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Sonia & Jasper\AppData\Roaming\Dropbox\bin\Dropbox.exe /autoplay => No File CustomCLSID: HKU\S-1-5-21-1535155601-2421706697-1459365258-1001_Classes\CLSID\{162C6FB5-44D3-435B-903D-E613FA093FB5}\InprocServer32 -> C:\Users\Sonia & Jasper\AppData\Local\Microsoft\OneDrive\17.3.6943.0625\amd64\FileCoAuthLib64.dll (Microsoft Corporation) ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Alwil Software\Avast5\ashShA64.dll [2017-07-30] (AVAST Software) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Alwil Software\Avast5\ashShA64.dll [2017-07-30] (AVAST Software) ShellIconOverlayIdentifiers: [VeriFace Enc] -> {771C7324-DA80-49D3-8017-753B0AF60951} => C:\Windows\system32\IcnOvrly.dll [2012-05-30] () ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ContextMenuHandlers1: [Atheros] -> {B8952421-0E55-400B-94A6-FA858FC0A39F} => C:\Program Files (x86)\Bluetooth Suite\BtvAppExt.dll [2011-12-13] (Atheros Commnucations) ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Alwil Software\Avast5\ashShA64.dll [2017-07-30] (AVAST Software) ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ContextMenuHandlers1: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => c:\Program Files\mcafee\msc\McCtxMenuFrmWrk.dll [2013-03-13] (McAfee, Inc.) ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2011-03-02] () ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2011-03-02] () ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Alwil Software\Avast5\ashShA64.dll [2017-07-30] (AVAST Software) ContextMenuHandlers3: [FTShellContext] -> {AFF81F7B-6942-40c4-AADA-7214EF7B6DD1} => C:\Program Files (x86)\Bluetooth Suite\ShellContextExt.dll [2011-12-13] (Atheros Commnucations) ContextMenuHandlers3: [IkeyShlExt] -> {F1E551D1-822B-40e6-B4D8-A9B4A48AA07A} => C:\Windows\system32\SimpleExt.dll [2012-05-30] () ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ContextMenuHandlers4: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2011-03-02] () ContextMenuHandlers4-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2011-03-02] () ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.18.0.dll [2017-08-10] (Dropbox, Inc.) ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2012-01-19] (Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2012-10-02] (NVIDIA Corporation) ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Alwil Software\Avast5\ashShA64.dll [2017-07-30] (AVAST Software) ContextMenuHandlers6: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => c:\Program Files\mcafee\msc\McCtxMenuFrmWrk.dll [2013-03-13] (McAfee, Inc.) ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2011-03-02] () ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2011-03-02] () ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {00E03054-56D6-46C0-9FD9-4A106B0D0F82} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1535155601-2421706697-1459365258-1001Core => C:\Users\Sonia & Jasper\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-07-30] (Facebook Inc.) Task: {08DC1C65-E3D5-4803-9280-BE98D021DE83} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2017-01-20] (Dropbox, Inc.) Task: {0A19B923-E539-405F-9C96-62082FCCFA34} - System32\Tasks\{20D58D87-AE9E-4EDF-A1C1-E3D3D30F8A69} => C:\Windows\system32\pcalua.exe -a "C:\Users\Sonia & Jasper\AppData\Local\Temp\Temp1_Synaptics_v16_3_15_1_C_XP32_Vista32_Win7-32_XP64_Vista64_Win7-64_Signed_Acme_Inc.zip\Setup.exe" <==== ATTENTION Task: {1555750E-84F9-41BA-AA01-0229C2BADC97} - System32\Tasks\AdobeAAMUpdater-1.0-Japson-Sonia & Jasper => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-06-03] (Adobe Systems Incorporated) Task: {1E0525B6-4501-4D09-81FF-96EA824827B8} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [2017-01-20] (Dropbox, Inc.) Task: {4D5896DA-DD4F-430F-A5C8-CABEECB74CBF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-07-19] (Adobe Systems Incorporated) Task: {515F5387-CA30-4890-BA1E-E4B6A0178268} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {641268CC-1D0C-4563-AE23-A5C79A2BF7CA} - System32\Tasks\{8FEF19E1-AD93-436A-BE33-6016DECACE15} => "c:\program files (x86)\google\chrome\application\chrome.exe" hxxp://ui.skype.com/ui/0/6.22.0.107/en/go/help.faq.installer?LastError=1638 Task: {653C4268-53A8-4E7E-B87B-72799C581A2F} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-08-10] (Adobe Systems Incorporated) Task: {72028140-1209-4F1E-9E3F-471B9D72D33D} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-1535155601-2421706697-1459365258-1001UA => C:\Users\Sonia & Jasper\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-07-30] (Facebook Inc.) Task: {7DB8D83C-E537-496D-B6C1-3365A13C3166} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe [2017-07-13] (AVAST Software) Task: {7FF0F51F-8B8C-4F51-905B-645C22D668E9} - System32\Tasks\avastBCLRestartS-1-5-21-1535155601-2421706697-1459365258-1001 => C:\Program Files (x86)\Mozilla Firefox\firefox.exe Task: {83A7FDC4-E008-4FA7-9DEF-3399747C504D} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2017-04-11] (Microsoft Corporation) Task: {A175651B-BAA1-49FF-8257-9A7F786C308E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {A81C6EBE-A2B5-4ABB-97BA-7D274829255C} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2017-07-11] (Microsoft Corporation) Task: {A8DA4AEC-88F8-479A-AEA5-13A5C1C8840A} - System32\Tasks\MirageAgent => C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2011-01-29] (CyberLink) Task: {BB61E8DE-DF71-42FC-8CDF-FEB0C8B382B1} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {BF6362FF-2DD0-4459-82AD-73B8F125A526} - System32\Tasks\{D99C3D83-0289-42B3-84E5-B99C8A244D47} => "c:\program files (x86)\google\chrome\application\chrome.exe" hxxp://ui.skype.com/ui/0/6.21.60.104/en/go/help.faq.installer?LastError=1638 Task: {C8EE3491-896C-4FF4-8649-4AF314F18CFF} - System32\Tasks\Avast Emergency Update => C:\Program Files\Alwil Software\Avast5\AvEmUpdate.exe [2017-07-30] (AVAST Software) Task: {E1AF9477-F9F6-4FCF-9635-E29EE61054A5} - System32\Tasks\{FB1F3C35-1D0C-492A-B789-E201598B3EC2} => "c:\program files (x86)\google\chrome\application\chrome.exe" hxxp://ui.skype.com/ui/0/6.21.0.104/en/go/help.faq.installer?LastError=1638 Task: {F91933B2-3DA7-4854-A298-8C93968D741C} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2017-04-11] (Microsoft Corporation) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1535155601-2421706697-1459365258-1001Core.job => C:\Users\Sonia & Jasper\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1535155601-2421706697-1459365258-1001UA.job => C:\Users\Sonia & Jasper\AppData\Local\Facebook\Update\FacebookUpdate.exe ==================== Shortcuts & WMI ======================== (The entries could be listed to be restored or removed.) Shortcut: C:\Users\Sonia & Jasper\AppData\Roaming\Microsoft\Windows\Network Shortcuts\Mijn websites op MSN\target.lnk -> hxxp://nl.msnusers.co ShortcutWithArgument: C:\Users\Sonia & Jasper\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Chrome Apps\Videostream for Google Chromecast™.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=cnciopoikihiagdjbjpnocolokfelagl ==================== Loaded Modules (Whitelisted) ============== 2012-05-30 02:29 - 2012-05-30 02:28 - 000628064 _____ () C:\Windows\system32\SimpleExt.dll 2013-05-31 00:27 - 2011-03-02 12:40 - 000164864 _____ () C:\Program Files\WinRAR\rarext.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Option => "OptionValue"="2" e" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcmscsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcmscsvc => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Driver" ==================== Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2015-10-14 13:11 - 000000841 _____ C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-1535155601-2421706697-1459365258-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Sonia & Jasper\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{8C716DCC-BDD7-4969-A018-248DF52912F2}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{AAD0E6E9-50A3-4477-8B7C-520E02538424}] => (Allow) LPort=2869 FirewallRules: [{065BF703-3F05-4D4D-9A9F-60D165CA0EC0}] => (Allow) LPort=1900 FirewallRules: [{FB87D7E5-8CFA-4B66-8575-7897D30FC9A8}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{38B634A9-EE42-4A7F-BA1C-CAC39C75A990}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe FirewallRules: [{E00B3E13-0523-4220-8A66-1D4DD5F84CF6}] => (Allow) C:\Program Files (x86)\Origin Games\FIFA 13\Game\fifa13.exe FirewallRules: [{6FBFA7AA-B148-4F1B-A2FE-0F2CD2DC907C}] => (Allow) C:\Program Files (x86)\Origin Games\FIFA 13\Game\fifa13.exe FirewallRules: [{1EE3BC1D-019F-4293-8425-D35EAAA55154}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{A30D10D6-CF7A-44BE-BA59-A39E98D10359}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{C3DA71F3-314F-40B9-B594-1EEC69D3E5EE}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{2FA137F2-BA8E-493F-B5BF-817A0C174547}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{8A01BEEB-C4EA-474B-A701-BF8F94A4563A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{9FD9F8F1-5D4F-4AC7-AC3E-5A5F3231C109}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{BCB7E726-CCB8-432A-A84E-1B3762BE6311}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{D1615A82-29ED-4FB5-96CC-6430AAB1936B}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe FirewallRules: [{F73B30C1-4B99-477C-A9B0-7699D1D21991}] => (Allow) %ProgramFiles%\Zune\Zune.exe FirewallRules: [{9F2C2AF4-819F-46E1-B021-65A6C9F650B8}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{8E7098CA-1F1D-4D14-A92C-2F538C4F3682}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{DE48C9AC-3CE3-4472-90FE-5DBD04BDD6BB}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{859BE479-B80E-44C6-9349-B88C3568EAA3}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{DA1F1356-8004-49A8-8F48-FD933A0D79FB}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{FD750ADD-C8FA-4BA7-B3BD-AE1512C99A65}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{0DE9AE92-6EDB-4BF3-9C2D-98000CACA90D}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{946A4E83-1DFA-4F64-A3D9-5B0DB11EAD5B}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [TCP Query User{54E5753C-0AE1-4832-9225-EADA2431E11D}C:\users\sonia & jasper\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\sonia & jasper\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{BFA12469-03FD-4BCE-A0E7-6EEEF5F2E7D2}C:\users\sonia & jasper\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\sonia & jasper\appdata\roaming\spotify\spotify.exe FirewallRules: [{21536966-6BAE-44E0-82A7-C005EB0D3AAF}] => (Allow) C:\Program Files (x86)\Origin Games\FIFA 14 Demo\Game\fifa14_demo.exe FirewallRules: [{92D55DE6-D73A-49ED-8A60-44B59EAED8C1}] => (Allow) C:\Program Files (x86)\Origin Games\FIFA 14 Demo\Game\fifa14_demo.exe FirewallRules: [{7ACE728B-FAF3-4A54-BA2A-702A2575842A}] => (Allow) C:\Users\Sonia & Jasper\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{6ADE0F95-A62F-4AE2-BB75-72330A7B158D}] => (Allow) C:\Users\Sonia & Jasper\AppData\Roaming\uTorrent\uTorrent.exe FirewallRules: [{E5C6CCFB-AEE8-42D1-AB85-233672473373}] => (Allow) C:\Users\Sonia & Jasper\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe FirewallRules: [{CCF08E9C-DC7A-43F0-9866-EF21AE0CD9C2}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{CBF0E049-8375-4FA8-9120-635AAE474D2F}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe FirewallRules: [{FCB3B6E9-6339-438B-934B-E5F81BE51F58}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 14\Programs\RM.exe FirewallRules: [{033E9B64-B4F2-441E-B164-F4B860372EA4}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 14\Programs\RM.exe FirewallRules: [{2D0B2EAA-574D-4101-AA86-E6B3B0C91D30}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 14\Programs\Studio.exe FirewallRules: [{0297461F-0663-4260-B27F-82BB025099FF}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 14\Programs\Studio.exe FirewallRules: [{B608A9A9-700B-429B-A937-4D1EF3A75D6C}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 14\Programs\umi.exe FirewallRules: [{B56B9026-01BA-45B2-B895-C4645839298A}] => (Allow) C:\Program Files (x86)\Pinnacle\Studio 14\Programs\umi.exe FirewallRules: [{6479C986-4ECB-47B4-893F-4DBD9EA10BC7}] => (Allow) C:\Program Files (x86)\HTC\HTC Sync Manager\HTCSyncManager.exe FirewallRules: [{1472F742-DBD7-430D-A4A4-1B1D3BFBD6ED}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe FirewallRules: [{D88A2E07-8373-440F-8AB9-EC9C73502901}] => (Allow) C:\Program Files (x86)\HTC\HTC Sync Manager\HTCSyncManager.exe FirewallRules: [{A640ACEA-3C4E-45E7-A0FF-96A4B44D4D14}] => (Allow) C:\Users\Sonia & Jasper\AppData\Local\Facebook\Video\Skype\FacebookVideoCalling.exe FirewallRules: [{55D7B2B0-B771-4229-8C64-3E51154F3B1D}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [TCP Query User{7AC2930A-3144-4AB8-837E-362B5008528F}C:\users\sonia & jasper\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\sonia & jasper\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{7A176CCA-6A42-4BAC-83B6-9A56C34761FF}C:\users\sonia & jasper\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\sonia & jasper\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{B71C9397-F5E6-4089-B915-64C73D7A7026}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{CCBFC28C-5A02-4CB5-96BD-E4C813DF10FE}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{2BBEBE9B-8179-479E-BD48-92BF1F17988B}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{88CB8A6E-8FCF-4894-B0B0-17B3B2F071EC}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{4FE49D8B-5FB2-4B22-8698-35A274758E5E}C:\users\sonia & jasper\appdata\roaming\acestream\engine\ace_engine.exe] => (Block) C:\users\sonia & jasper\appdata\roaming\acestream\engine\ace_engine.exe FirewallRules: [UDP Query User{98177433-DB8D-469E-82ED-BC68E41F18EC}C:\users\sonia & jasper\appdata\roaming\acestream\engine\ace_engine.exe] => (Block) C:\users\sonia & jasper\appdata\roaming\acestream\engine\ace_engine.exe FirewallRules: [TCP Query User{56E86DC5-3126-4A02-81BD-0F239FDCD34F}C:\users\sonia & jasper\appdata\roaming\acestream\engine\ace_engine.exe] => (Block) C:\users\sonia & jasper\appdata\roaming\acestream\engine\ace_engine.exe FirewallRules: [UDP Query User{DA7D573A-0620-44C7-A3D5-1A69A5B4151A}C:\users\sonia & jasper\appdata\roaming\acestream\engine\ace_engine.exe] => (Block) C:\users\sonia & jasper\appdata\roaming\acestream\engine\ace_engine.exe FirewallRules: [{41D22B6E-4A78-4BB9-BEAC-B206B318EFE7}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{7192AB42-F7A7-469B-BB89-3381C50290ED}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{D6519B25-A838-4166-A4A7-D30C337B6F9F}] => (Allow) LPort=5556 FirewallRules: [{D4C46C32-4DDB-4B20-AB95-598D0C891BB8}] => (Allow) LPort=5558 FirewallRules: [TCP Query User{0EB35EE8-0490-465D-AEB5-B2B6CCBEA8D2}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe FirewallRules: [UDP Query User{EAEFD984-3710-42E0-AE20-8B1C9B6C3747}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe FirewallRules: [{40EA0E9F-F075-4118-8990-6E7280C35433}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{B6372D5B-12E9-40C4-873E-8BF7DF1445B3}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe ==================== Restore Points ========================= 22-07-2017 16:34:35 Scheduled Checkpoint 31-07-2017 08:16:21 Scheduled Checkpoint 08-08-2017 13:04:02 Scheduled Checkpoint ==================== Faulty Device Manager Devices ============= Name: avast! VM Monitor Description: avast! VM Monitor Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: aswVmm Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: Security Processor Loader Driver Description: Security Processor Loader Driver Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: spldr Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. Name: avast! Revert Description: avast! Revert Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: aswRvrt Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== Error: (08/20/2017 09:56:57 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (08/13/2017 04:16:49 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 165611 Error: (08/13/2017 04:16:49 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 165611 Error: (08/13/2017 04:16:49 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (08/13/2017 04:16:34 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 150011 Error: (08/13/2017 04:16:34 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 150011 Error: (08/13/2017 04:16:34 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (08/13/2017 04:16:18 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 134426 Error: (08/13/2017 04:16:18 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 134426 Error: (08/13/2017 04:16:18 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second System errors: ============= Error: (08/20/2017 10:14:43 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start. Error: (08/20/2017 10:14:43 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start. Error: (08/20/2017 10:14:43 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start. Error: (08/20/2017 10:14:42 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start. Error: (08/20/2017 10:14:42 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start. Error: (08/20/2017 10:14:42 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start. Error: (08/20/2017 10:14:42 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start. Error: (08/20/2017 10:14:42 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start. Error: (08/20/2017 10:14:42 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start. Error: (08/20/2017 10:14:42 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: The Computer Browser service depends on the Server service which failed to start because of the following error: The dependency service or group failed to start. CodeIntegrity: =================================== Date: 2016-09-04 18:40:35.519 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mfeapfk.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-04 18:40:27.766 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\cfwids.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-04 18:36:12.781 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mfefirek.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-04 18:36:12.734 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mfeavfk.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-04 18:36:06.853 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswKbd.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-04 18:36:06.775 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\aswSnx.sys because the set of per-page image hashes could not be found on the system. Date: 2016-09-01 22:00:55.947 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mfeapfk.sys because the set of per-page image hashes could not be found on the system. Date: 2016-08-23 09:28:18.224 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mfeapfk.sys because the set of per-page image hashes could not be found on the system. Date: 2016-08-23 09:26:49.538 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\cfwids.sys because the set of per-page image hashes could not be found on the system. Date: 2016-08-23 09:21:11.959 Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\mfefirek.sys because the set of per-page image hashes could not be found on the system. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i7-3612QM CPU @ 2.10GHz Percentage of memory in use: 20% Total physical RAM: 8055.38 MB Available physical RAM: 6443.95 MB Total Virtual: 16108.95 MB Available Virtual: 14624.16 MB ==================== Drives ================================ Drive c: (Windows7_OS) (Fixed) (Total:653.44 GB) (Free:93.09 GB) NTFS ==>[system with boot components (obtained from drive)] Drive d: (LENOVO) (Fixed) (Total:25.47 GB) (Free:20.98 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: 987A1640) Partition 1: (Active) - (Size=200 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=653.4 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=25.5 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=19.5 GB) - (Type=12) ==================== End of Addition.txt ============================